{"id":"CVE-2021-22205","title":"An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.9","summary":"An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.9. GitLab was not properly validating image files that were passed to a file parser which resulted in a remote command execution.","severity":"critical","cvss":10,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","cwe":["CWE-94","CWE-94"],"vendor":"gitlab","product":"gitlab","affected":["gitlab >= 11.9.0, < 13.8.8","gitlab >= 13.9.0, < 13.9.6","gitlab >= 13.10.0, < 13.10.3"],"patched":["gitlab 13.10.3"],"published":"2021-04-23","updated":"2026-08-01","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2021-22205","references":[{"url":"http://packetstormsecurity.com/files/164768/GitLab-Unauthenticated-Remote-ExifTool-Command-Injection.html","label":"cve@gitlab.com"},{"url":"http://packetstormsecurity.com/files/164994/GitLab-13.10.2-Remote-Code-Execution.html","label":"cve@gitlab.com"},{"url":"https://gitlab.com/gitlab-org/cves/-/blob/master/2021/CVE-2021-22205.json","label":"cve@gitlab.com"},{"url":"https://gitlab.com/gitlab-org/gitlab/-/issues/327121","label":"cve@gitlab.com"},{"url":"https://hackerone.com/reports/1154542","label":"cve@gitlab.com"},{"url":"http://packetstormsecurity.com/files/164768/GitLab-Unauthenticated-Remote-ExifTool-Command-Injection.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://packetstormsecurity.com/files/164994/GitLab-13.10.2-Remote-Code-Execution.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://gitlab.com/gitlab-org/cves/-/blob/master/2021/CVE-2021-22205.json","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://gitlab.com/gitlab-org/gitlab/-/issues/327121","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://hackerone.com/reports/1154542","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-22205","label":"134c704f-9b21-4f2e-91b3-4a467353bcc0"}],"tags":["nvd","kev","in-the-wild","exploit-available"],"epss":0.99731,"epssPercentile":0.99953,"kev":true,"kevDateAdded":"2021-11-03","kevDueDate":"2021-11-17","kevRansomware":true,"exploited":true,"exploitAvailable":true,"ingestedAt":"2026-08-01T06:11:30.966Z","exploits":{"exploitdb":true,"github":26,"githubRepos":["https://github.com/mr-r3bot/Gitlab-CVE-2021-22205","https://github.com/XTeam-Wing/CVE-2021-22205","https://github.com/r0eXpeR/CVE-2021-22205"],"metasploit":["exploit/multi/http/gitlab_exif_rce"],"nuclei":["CVE-2021-22205"],"checkedAt":"2026-09-15T16:16:03.015Z"},"slug":"CVE-2021-22205","body":"## Overview\n\nAn issue has been discovered in GitLab CE/EE affecting all versions starting from 11.9. GitLab was not properly validating image files that were passed to a file parser which resulted in a remote command execution.\n\n## Affected\n\n- `gitlab >= 11.9.0, < 13.8.8`\n- `gitlab >= 13.9.0, < 13.9.6`\n- `gitlab >= 13.10.0, < 13.10.3`\n\n## Remediation\n\nUpgrade past the affected range:\n\n- `gitlab 13.10.3`","depth":"hadal","depthScore":100,"depthScoreParts":{"impact":55,"likelihood":19.9,"exploitation":25,"ransomware":5},"changes":[]}